Skip to main content
IM

Ingram Micro

GDPR evidence

ingrammicro.comLast verified 17 Sep 2026
GDPR mark, CertReports state No public evidenceNo public evidence

Ingram Micro and GDPR

CertReports found no public GDPR evidence for Ingram Micro as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.

Evidence

VerifiedActive: EU-US Certification, SW-US Certification, UK Extension Certification
as of 17 Sep 2026 · confidence 100%
Kind
listing
Issued or listed
16 Jul 2018
Expires or valid through
16 Mar 2027
Scope
Depending on the nature of the individuals’ interactions with us, Ingram Micro collects, uses, and processes Non-HR Personal Data for a variety of purposes, including operating our business, complying with our legal obligations, exercising our rights and obligations under various agreements with third-parties such as vendors, suppliers, partners, customers etc., handling legal claims, providing and developing our offerings, which includes using data to improve our offerings and personalizing customers' and partners’ experiences. We also may use the data to communicate with our customers and partners, for example, informing them about their account and product information. This Non-HR data includes: Identity Data Contact Data Transaction Data Technical Data Profile Data Usage Data Preference Data Professional Data Sensitive Personal Data More detail about each category above is available in our online Privacy Statement as there is insufficient room here. Ingram Micro also collects, uses, and processes HR Personal Data for workforce management and administration purposes, for recruitment, for security related purposes, for managing and operating information technology and communications systems, for risk management and insurance functions, for budgeting, for financial management and reporting, and for strategic planning, which includes managing litigation involving Ingram Micro, and other legal disputes and inquiries, and meeting legal and regulatory requirements. For employees and contractors, this HR data includes: Contact information. Family members and dependents information. Government identification. Demographics and information about legally protected classifications. Job-related information. Compensation and benefits information. Bank and financial information. Commercial information. Internet, network, and IT information. Audio, visual, CCTV, and surveillance information. Preferences. Location information. Health and medical information. Biometric information. Inferences. Sensitive information. For Recruits and Job Applicants, this HR data includes: Identification data and contact details. Employment history. Background information. Details of your nominated references (including their name, contact details, employer and job role). Recordings of your interviews – in some cases. Details of your immigration status. Previous applications/roles. Other information you voluntarily provide throughout the process, including through assessment centers, exercises, and interview. More detail about each category above is available in our Personnel Privacy Statement and our Recruitment and Hiring Privacy Statement, as there is insufficient room here.
SourceCapturedQuoteLinks
Data Privacy Framework list
Official registry · HTTP 200
17 Sep 2026Ingram Micro, Inc.: Active: EU-US Certification, SW-US Certification, UK Extension Certification
Live pagesha256 5e7092355a
What GDPR means, and what it does not

"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.

Read the GDPR guide and browse all vendors with evidence

Questions buyers ask

Is Ingram Micro GDPR compliant?

There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.

How does CertReports verify this?

Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.

Alternatives with GDPR evidence

Similar vendors (shared product tags) whose GDPR row is verified or vendor-stated, ranked by similarity.

No same-category vendor has GDPR evidence in the index yet.